WardPearce

Open source developer & privacy advocate.

  • 5 Posts
  • 40 Comments
Joined 1 year ago
cake
Cake day: June 7th, 2023

help-circle







  • yes you must not be federated.

    My other comment what you must be referring to is “most insecure android stack”, doesn’t have references I agree & it probably should (thats why i edited it to include them) but its also on people to do their own research and if someone is commenting that their stack is insecure, maybe that person could ask me why or do a little research themselves (instead of just downvoting. Or they could just downvote & ask a question too!).

    Also I’m not saying down votes is “harassment” thats insane, people can down votes as much as they want. I’m just over people unwilling to see insecurities after I provide references (like in the comment you can’t see responses to)

    Shocker not every comment I make will be prefect & if people genuinely wanted to learn ask questions!

    Also this whole idea that its a “negative attitude” is insane, I’m literally telling someone the software they use is insecure.


  • How did I disregard it? He literally provided a reference what countered his own point.

    Like please, if you actually have a point to make. I’d love to know how he corrected me at all.

    I think trashing is a overstatement, I’m providing references to my point (Also I LOVE firefox and use it on my desktop what i mentioned! It lacks basic security features on Android, that is not trashing on Firefox!) and I was deffo a bit hostile because he was obviously responding in bad faith.












  • Per-site process isolation is a powerful security feature that seeks to limit exposure of a malicious website/script abusing a security vulnerability. Firefox calls per-site process isolation Fission and is enabled by default on desktop. Fission is not yet enabled by default on Android, and when manually enabled it results in a severely degraded/broken experience. Furthermore Firefox on Android does not take advantage of Android’s isolatedProcess flag for completely sandboxing application services.

    Obviously Firefox has it own data isolation, but this doesn’t matter if someone can execute bad actiing code due to lack of process isolation.


  • As I said I not a fan of Brave (mostly because of the crypto stuff), calling it spyware you could say is hhmmmm “misinformation”. Yes security and privacy are different concepts but they are closely linked. If your browser fails to stop malicious code from being executed, you might find this impacts your privacy.

    Matter of facts is, Android Firefox lacks site isolation. Yes you can enable a highly experimental version of site isolation what will break your browser (admitted by your source) and may even fail to isolate sites altogether. Android Firefox doesn’t use isolated processes, a functionality what can’t be enabled.

    I’m not sure what your goal is with this discussion, but obviously you don’t have any regard for privacy or security. Your arguments over semantics are obviously in bad fair (and not even accurate to the original discussion).

    To reiterate for the millionth time, feel free to use Firefox on Android, I’m avoiding using Firefox due to large security concerns. Once Mozilla finishes implementing site isolation and process isolation, I’ll be the 1st one to move off Brave and into Firefox.

    But for your own future reference, actually source articles what support your statements. Otherwise don’t get upset when someone points that out.